The haveged project is an attempt to provide an easy-to-use, unpredictable random number generator based upon an adaptation of the HAVEGE algorithm. Haveged was created to remedy low-entropy conditions in the Linux random device that can occur under some workloads, especially on headless servers. Current development of haveged is directed towards improving overall reliablity and adaptability while minimizing the barriers to using haveged for other tasks.
I quite like the idea of presenting OTK (one time key) to end user in the form of QR code.
A simple example:
Suppose you're already a registered user of XYZ.com. You've just downloaded the XYZ.com mobile app and wanted to login. You then login to XYZ.com and go to the page My Account > My Login Code. I use the built in QR code scanner in XYZ.com mobile to scan the one use QR code on the page. Viola! Mobile app is now logged in and no need to type my 30 characters mix-of-alphabets-digits-symbols password on the phone's tiny little on screen keyboard.
An error occurred during a connection to www.howsmyssl.com. Peer attempted old style (potentially vulnerable) handshake. (Error code: ssl_error_unsafe_negotiation)
My firefox config "security.ssl.treat_unsafe_negotiation_as_broken" is set to true